312-50v10 Exam Question 226

A company's Web development team has become aware of a certain type of security vulnerability in their Web software. To mitigate the possibility of this vulnerability being exploited, the team wants to modify the software requirements to disallow users from entering HTML as input into their Web application.
What kind of Web application vulnerability likely exists in their software?
  • 312-50v10 Exam Question 227

    Which of the following programs is usually targeted at Microsoft Office products?
  • 312-50v10 Exam Question 228

    While performing online banking using a Web browser, a user receives an email that contains a link to an
    interesting Web site. When the user clicks on the link, another Web browser session starts and displays a
    video of cats playing a piano. The next business day, the user receives what looks like an email from his
    bank, indicating that his bank account has been accessed from a foreign country. The email asks the user
    to call his bank and verify the authorization of a funds transfer that took place. What Web browser-based
    security vulnerability was exploited to compromise the user?
  • 312-50v10 Exam Question 229

    A consultant has been hired by the V.P. of a large financial organization to assess the company's security posture. During the security testing, the consultant comes across child pornography on the V.P.'s computer.
    What is the consultant's obligation to the financial organization?
  • 312-50v10 Exam Question 230

    Using Windows CMD, how would an attacker list all the shares to which the current user context has access?